Providing Access To Custom Services; Grouping Services - Fortinet FortiGate FortiGate-60R Installation And Configuration Manual

Antivirus firewall
Table of Contents

Advertisement

Services

Providing access to custom services

Grouping services

154
Table 5: FortiGate predefined services (Continued)
Service name
UUCP
VDOLIVE
WAIS
WINFRAME
X-WINDOWS
Add a custom service if you need to create a policy for a service that is not in the
predefined service list.
1
Go to Firewall > Service > Custom.
2
Select New.
3
Enter a Name for the service. This name appears in the service list used when you
add a policy.
The name can contain numbers (0-9), uppercase and lowercase letters (A-Z, a-z), and
the special characters - and _. Other special characters and spaces are not allowed.
4
Select the Protocol (either TCP or UDP) used by the service.
5
Specify a Source and Destination Port number range for the service by entering the
low and high port numbers. If the service uses one port number, enter this number in
both the low and high fields.
6
If the service has more than one port range, select Add to specify additional protocols
and port ranges.
If you mistakenly add too many port range rows, select Delete
extra row.
7
Select OK to add the custom service.
You can now add this custom service to a policy.
To make it easier to add policies, you can create groups of services and then add one
policy to provide or block access for all the services in the group. A service group can
contain predefined services and custom services in any combination. You cannot add
service groups to another service group.
1
Go to Firewall > Service > Group.
2
Select New.
3
Enter a Group Name to identify the group.
This name appears in the service list when you add a policy and cannot be the same
as a predefined service name.
The name can contain numbers (0-9), uppercase and lowercase letters (A-Z, a-z), and
the special characters - and _. Other special characters and spaces are not allowed.
Description
Unix to Unix copy utility, a simple file copying
protocol.
For VDO Live streaming multimedia traffic.
Wide Area Information Server. An Internet
search protocol.
For WinFrame communications between
computers running Windows NT.
For remote communications between an
X-Window server and X-Window clients.
Firewall configuration
Protocol
Port
udp
540
tcp
7000-7010
tcp
210
tcp
1494
tcp
6000-6063
to remove each
Fortinet Inc.

Advertisement

Table of Contents
loading

This manual is also suitable for:

Fortigate 60r

Table of Contents